🚨 GoPlus Security Alert:
A user lost approximately $100K USDT in an address poisoning attack. The victim received more than 400 poisoning transactions after their previous transfer 69 days ago.
🔍How address poisoning works: Attackers send small transactions from malicious addresses designed to resemble a victim’s intended recipient—often matching the first and last few characters—then wait for a copy-paste mistake.
These attacks are now fully automated, from identifying targets and generating lookalike addresses to deploying spoof tokens, sending dust transactions, and laundering stolen funds through mixers.
Victim:
0x9B4Ded0ab7754428F7eC0f63a42bAe70D2f51D83
Intended recipient:
0xae7C0ffAB6e77BE2D7d7880a4Ce433F59A4e2c85
↕️
Poisoning address:
0xAe7c08afAD91db18666EEAC055D7562c9f4e2c85
☠️ The poisoned address closely mirrors the intended recipient at both ends.
🛡️ Security Reminders:
• Never copy a recipient address from your transaction history.
• Verify the entire address—not just the first and last few characters.
• Always send a small test transaction before transferring a large amount.